VulnSea

container-tools:rhel8/podman vulnerabilities

CVEs whose affected-version data names the container-tools:rhel8/podman package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

5 CVEsRSS

CVE-2026-92574High· 8.8
today

A vulnerability in CRI-O checkpoint restore allows a user who can create a pod from a malicious checkpointed container to bypass the destination Kubernetes security context

A vulnerability in CRI-O checkpoint restore allows a user who can create a pod from a malicious checkpointed container to bypass the destination Kubernetes security context. The restored process may retain credentials, Linux capabilities…

TwilightRed Hat · openshift-sandboxed-containers/osc-monitor-rhel9via NVD
CVE-2026-76781Medium· 5.5
4d ago

A flaw was found in libxml2

A flaw was found in libxml2. A local user or an attacker providing a specially crafted XML catalog can trigger a NULL pointer dereference during XML catalog parsing. This occurs when a `nextCatalog` element lacks its mandatory `catalog` …

SunlitRed Hat · libxml2-mainEPSS 0.16%via NVD
CVE-2025-11395Medium· 5.5
6d ago

A flaw was found in Podman

A flaw was found in Podman. If an attacker can pass a crafted tar archive to the `podman load` command, they can create files on the host machine with the privileges of the user running Podman.

SunlitRed Hat · buildahEPSS 0.19%via NVD
CVE-2026-79705Medium· 4.5
6d ago

A flaw was found in the buildah/copier Go package

A flaw was found in the buildah/copier Go package. When used outside of Buildah by a non-root caller, a crafted tar archive containing malicious symlinks can escape the target extraction directory and create files outside the intended de…

SunlitRed Hat · ansible-automation-platform-24/eda-controller-rhel8EPSS 0.25%via NVD
CVE-2026-74860High· 8.5
1w ago

A flaw was found in libxml2 with Python bindings enabled

A flaw was found in libxml2 with Python bindings enabled. A remote attacker could exploit this vulnerability by providing a specially crafted XML document containing a Document Type Definition (DTD) with enumerated attribute values. This…

TwilightRed Hat · libxml2-mainEPSS 0.35%via NVD
container-tools:rhel8/podman vulnerabilities (CVEs) · VulnSea